Blame SOURCES/0017-fix-also-add-SameSite-None-to-by-value-session-cooki.patch
|
|
79aa81 |
From ca43d64e722f80ed91871c9ea31fbc7660aa9147 Mon Sep 17 00:00:00 2001
|
|
|
79aa81 |
From: Hans Zandbelt <hans.zandbelt@zmartzone.eu>
|
|
|
79aa81 |
Date: Mon, 3 Feb 2020 10:34:10 +0100
|
|
|
79aa81 |
Subject: [PATCH 17/19] fix: also add SameSite=None to by-value session cookies
|
|
|
79aa81 |
|
|
|
79aa81 |
bump to 2.4.2rc0
|
|
|
79aa81 |
|
|
|
79aa81 |
Signed-off-by: Hans Zandbelt <hans.zandbelt@zmartzone.eu>
|
|
|
79aa81 |
(cherry picked from commit f6798246abc8fd8f865db313439882ac9f5771f3)
|
|
|
79aa81 |
---
|
|
|
79aa81 |
ChangeLog | 4 ++++
|
|
|
79aa81 |
src/session.c | 2 +-
|
|
|
79aa81 |
2 files changed, 5 insertions(+), 1 deletion(-)
|
|
|
79aa81 |
|
|
|
79aa81 |
diff --git a/ChangeLog b/ChangeLog
|
|
|
79aa81 |
index b67f764..3db7110 100644
|
|
|
79aa81 |
--- a/ChangeLog
|
|
|
79aa81 |
+++ b/ChangeLog
|
|
|
79aa81 |
@@ -1,3 +1,7 @@
|
|
|
79aa81 |
+02/03/2020
|
|
|
79aa81 |
+- fix: also add SameSite=None to by-value session cookies
|
|
|
79aa81 |
+- bump to 2.4.2rc0
|
|
|
79aa81 |
+
|
|
|
79aa81 |
01/29/2020
|
|
|
79aa81 |
- always add a SameSite value to the Set-Cookie header to satisfy upcoming Chrome/Firefox changes
|
|
|
79aa81 |
this can be overridden by using, e.g.:
|
|
|
79aa81 |
diff --git a/src/session.c b/src/session.c
|
|
|
79aa81 |
index cd9ccb8..e7194bd 100644
|
|
|
79aa81 |
--- a/src/session.c
|
|
|
79aa81 |
+++ b/src/session.c
|
|
|
79aa81 |
@@ -249,7 +249,7 @@ static apr_byte_t oidc_session_save_cookie(request_rec *r, oidc_session_t *z,
|
|
|
79aa81 |
(first_time ?
|
|
|
79aa81 |
OIDC_COOKIE_EXT_SAME_SITE_LAX :
|
|
|
79aa81 |
OIDC_COOKIE_EXT_SAME_SITE_STRICT) :
|
|
|
79aa81 |
- NULL);
|
|
|
79aa81 |
+ OIDC_COOKIE_EXT_SAME_SITE_NONE);
|
|
|
79aa81 |
|
|
|
79aa81 |
return TRUE;
|
|
|
79aa81 |
}
|
|
|
79aa81 |
--
|
|
|
79aa81 |
2.26.2
|
|
|
79aa81 |
|